Ransom

Ransom.RotorCrypt.15 (B) information

Malware Removal

The Ransom.RotorCrypt.15 (B) is considered dangerous by lots of security experts. When this infection is active, you may notice unwanted processes in Task Manager list. In this case, it is adviced to scan your computer with GridinSoft Anti-Malware.

GridinSoft Anti-Malware

Gridinsoft Anti-Malware

Removing PC viruses manually may take hours and may damage your PC in the process. We recommend using GridinSoft Anti-Malware for virus removal. Allows to complete scan and cure your PC during the trial period.
6-day free trial available.

What Ransom.RotorCrypt.15 (B) virus can do?

  • The binary likely contains encrypted or compressed data.
  • Network activity detected but not expressed in API logs

Related domains:

z.whorecord.xyz
a.tomx.xyz

How to determine Ransom.RotorCrypt.15 (B)?


File Info:

crc32: 9E29CC56
md5: b418305c0e3b244a462663a10319a7a1
name: B418305C0E3B244A462663A10319A7A1.mlw
sha1: 720e48643ff290808094b2efe1f6f52e60f88f99
sha256: d11bba3091c774e94db16c37b5c5327a0c1c7a52b700c4277cd78171cd65149c
sha512: e810befedd3b5babf293dfc938ba97f44647e0b3f87ded2ea4610288b2883439bee3b39749045324674933436842dc0ee4efae66150b03c70d4ab41c0c046377
ssdeep: 1536:S0J3n7efSkbl0sVMMFFuTlqv4wdhWWhbydG7jrgyXn37lNiPXbg:pVn7mjl0sHhWWsI7HXXrlNob
type: MS-DOS executable, MZ for MS-DOS

Version Info:

0: [No Data]

Ransom.RotorCrypt.15 (B) also known as:

BkavW32.AIDetect.malware1
K7AntiVirusRiskware ( 0040eff71 )
LionicTrojan.Win32.Generic.4!c
Elasticmalicious (high confidence)
CynetMalicious (score: 100)
ALYacGen:Variant.Ransom.RotorCrypt.15
CylanceUnsafe
SangforSuspicious.Win32.Save.a
CrowdStrikewin/malicious_confidence_100% (D)
AlibabaBackdoor:Win32/Tofsee.df4be5a6
K7GWRiskware ( 0040eff71 )
Cybereasonmalicious.c0e3b2
BaiduWin32.Trojan.Kryptik.rb
SymantecRansom.Cerber
ESET-NOD32a variant of Win32/Kryptik.HIYJ
APEXMalicious
AvastFileRepMalware
ClamAVWin.Trojan.Poison-9764285-0
KasperskyHEUR:Trojan.Win32.Generic
BitDefenderGen:Variant.Ransom.RotorCrypt.15
NANO-AntivirusTrojan.Win32.GenKryptik.flnlcy
MicroWorld-eScanGen:Variant.Ransom.RotorCrypt.15
TencentWin32.Trojan.Generic.Pcii
Ad-AwareGen:Variant.Ransom.RotorCrypt.15
SophosMal/Generic-R + Mal/Elenoocka-E
ComodoTrojWare.Win32.Crypt.C@7vajd0
BitDefenderThetaGen:NN.ZexaF.34142.fmqaaeg8Z2h
TrendMicroRansom_CERBER.SMALY0
McAfee-GW-EditionBehavesLike.Win32.Generic.mc
FireEyeGeneric.mg.b418305c0e3b244a
EmsisoftGen:Variant.Ransom.RotorCrypt.15 (B)
SentinelOneStatic AI – Malicious PE
JiangminBackdoor.Poison.bcz
WebrootW32.Trojan.Gen
AviraTR/Dropper.Gen
Antiy-AVLTrojan/Generic.ASMalwS.226F976
MicrosoftBackdoor:Win32/Tofsee.T
ArcabitTrojan.Ransom.RotorCrypt.15
GDataGen:Variant.Ransom.RotorCrypt.15
AhnLab-V3Malware/RL.Ransom_cerber.R245195
Acronissuspicious
McAfeeArtemis!B418305C0E3B
MAXmalware (ai score=89)
VBA32Backdoor.Poison
PandaTrj/CI.A
TrendMicro-HouseCallRansom_CERBER.SMALY0
RisingTrojan.Kryptik!1.AE8C (CLASSIC)
YandexTrojan.GenAsa!yRf6TM0vavk
IkarusTrojan.Dropper
MaxSecureTrojan.Malware.300983.susgen
FortinetW32/Kryptik.GKMB!tr
AVGFileRepMalware
Paloaltogeneric.ml

How to remove Ransom.RotorCrypt.15 (B)?

Ransom.RotorCrypt.15 (B) removal tool
  • Download and install GridinSoft Anti-Malware.
  • Open GridinSoft Anti-Malware and perform a “Standard scan“.
  • Move to quarantine” all items.
  • Open “Tools” tab – Press “Reset Browser Settings“.
  • Select proper browser and options – Click “Reset”.
  • Restart your computer.

About the author

Paul Valéry

I'm a cyber security analyst and data science expert with 5+ years of experience with security software contractors.

Leave a Comment